New Security Vulnerabilities 13th September 2007
The following new vulnerabilities were added to the Telspace's database this
month:
TOTAL THREATS IN THE DATABASE 15362
NEW THREATS RISK FACTOR SUMMARY
(*****) Urgent Risk 2
(**** ) Critical Risk 27
(*** ) High Risk 1
(** ) Medium Risk 3
(* ) Low Risk 1
NEW THREATS FAMILY SUMMARY
Red Hat Local Checks 7
Fedora Local Checks 6
Windows 5
Web Services 4
Centos Local Checks 3
Mandrake Local Checks 3
FreeBSD Local Checks 3
Remote Shell Access 1
Debian Local Checks 1
Service Detection 1
(*****) Urgent Risk - Windows
Timbuktu Pro < 8.6.5 Multiple Vulnerabilities
(*****) Urgent Risk - Remote Shell Access
Kerio MailServer < 6.4.1 Vulnerability
(**** ) Critical Risk - Centos Local Checks
CentOS : RHSA-2007-0873
(**** ) Critical Risk - Web Services
PHP < 5.2.4 Multiple Vulnerabilities
(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0795: cyrus
(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0875: mysql
(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-677: libvorbis
(**** ) Critical Risk - Web Services
Joomla searchword Command Execution Vulnerability
(**** ) Critical Risk - Mandrake Local Checks
MDKSA-2007:171: kernel
(**** ) Critical Risk - Windows
Novell Client nwspool.dll Buffer Overflow Vulnerabilities (bug 300870)
(**** ) Critical Risk - Windows
Winamp < 5.35 Buffer Overflow Vulnerability
(**** ) Critical Risk - Windows
Oracle JInitiator beans.ocx ActiveX Buffer Overflow Vulnerabilities
(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0873: star
(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0858: krb
(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-690: krb5
(**** ) Critical Risk - Mandrake Local Checks
MDKSA-2007:173: tar
(**** ) Critical Risk - Centos Local Checks
CentOS : RHSA-2007-0875
(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0774: kernel
(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-689: fetchmail
(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0539: aide
(**** ) Critical Risk - Red Hat Local Checks
RHSA-2007-0878: cyrus
(**** ) Critical Risk - Debian Local Checks
[DSA1367] DSA-1367-1 krb5
(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-683: tar
(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-685: kdegraphics
(**** ) Critical Risk - Centos Local Checks
CentOS : RHSA-2007-0878
(**** ) Critical Risk - Windows
Yahoo! Messenger YVerInfo ActiveX Buffer Overflow Vulnerabilities
(**** ) Critical Risk - Mandrake Local Checks
MDKSA-2007:172: clamav
(**** ) Critical Risk - Web Services
MDPro topicid parameter SQL Injection Vulnerability
(**** ) Critical Risk - Fedora Local Checks
Fedora Core 6 2007-679: kernel
(*** ) High Risk - Web Services
VHCS Session Fixation Vulnerability
(** ) Medium Risk - FreeBSD Local Checks
FreeBSD : rkhunter -- insecure temporary file creation (995)
(** ) Medium Risk - FreeBSD Local Checks
FreeBSD : gtar -- Directory traversal vulnerability (993)
(** ) Medium Risk - FreeBSD Local Checks
FreeBSD : fetchmail (994)
(* ) Low Risk - Service Detection
Timbuktu Detection (UDP)
|